VDB
CVE-2008-5718
CVE-2008-5718
PUBLISHED
CVSS 9.300000190734863 CRITICAL
The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title.
EPSS 1.82% · 83.3th percentile
Risk Scores
CVSS 2.0
9.300000190734863
EPSS Score
1.82%
83.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| netatalk | netatalk | 1.4.99-0.20000927, 1.4.99-0.20001108, 1.5 |
Timeline
- Dec 26, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- http://sourceforge.net/project/shownotes.php?release_id=648189 url
- DSA-1705 vendor-advisory
- 34484 third-party-advisory
- FEDORA-2009-3064 vendor-advisory
- FEDORA-2009-3069 vendor-advisory
- 33548 third-party-advisory
- 33227 third-party-advisory
- SUSE-SR:2009:004 vendor-advisory
- 50824 vdb
- 32925 vdb
- [oss-security] 20090114 update on CVE-2008-5718 mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2008-5718 advisory